summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2017-01-07regenMike Larkin
2017-01-07Some newer Intel Xeon E5v4 PCI ids, from Hrvoje PopovskiMike Larkin
ok deraadt
2017-01-07add missing comma in the NAME sectionIngo Schwarze
2017-01-07fix commata in the NAME sectionIngo Schwarze
2017-01-07reduce statement nesting depth in a couple places, suggested byMike Larkin
Michael Bombardieri
2017-01-07add rcs tagsMike Larkin
2017-01-07use 16 bit segment selectors. also reduces differences with i386 vmmMike Larkin
2017-01-07fix a typo in an .Xr reported by jmc@Ingo Schwarze
2017-01-07syncTheo de Raadt
2017-01-07Fill bootstrap translation table with zeroes before we use it and don't mapMark Kettenis
the vectors page at address 0 as we don't put them there. ok patrick@
2017-01-07Add note about ccc and initc so people who want it can see it isNicholas Marriott
possible.
2017-01-07Add support for the OSC 4 and OSC 104 palette setting escape sequences,Nicholas Marriott
from S Gilles.
2017-01-07Add and remove some blank lines, in order to make X509_verify_cert()Joel Sing
(slightly) more readable.
2017-01-07-#endif /* !SMALL */Theo Buehler
+#endif /* !NOSSL */
2017-01-07Only install header files relevant for the architecture we're targeting.Mark Kettenis
ok patrick@, jsg@
2017-01-07a little more cleanup;Jason McIntyre
2017-01-07Revert part of r1.54 as there are at least two situations where we are stillJoel Sing
returning ok == 1, with ctx->error not being X509_V_OK. Hopefully we can restore this behaviour once these are ironed out. Discussed with beck@
2017-01-07Remove unused MIX_CN_CIN macro, make umidi_evlen[] static, style(9).Alexandre Ratchov
From Michael W. Bombardieri. Thanks.
2017-01-07correctly mark all documented macros found in <openssl/bn.h>Ingo Schwarze
2017-01-07Use .Fn rather than .Xr for X509_VERIFY_PARAM_lookup(),Ingo Schwarze
fixing a dead link reported by jmc@. Only about half of X509_VERIFY_PARAM is documented so far, and the extensible lookup table feels like one of the more arcane features and probably not the next thing to document.
2017-01-07Document X509_NAME_hash(3), listed in <openssl/x509.h>;Ingo Schwarze
jmc@ reported that X509_LOOKUP_hash_dir(3) references it. Even though OpenSSL does not document it, given that it is used for file names that users have to create, it is sufficiently exposed to users to be worth documenting.
2017-01-07Write a new manual page X509_STORE_load_locations(3) from scratch.Ingo Schwarze
Not documented by OpenSSL, but listed in <openssl/x509_vfy.h> and referenced from X509_LOOKUP_hash_dir(3), and clearly more important than the latter. Fixes three dead links reported by jmc@. Most of the information from SSL_CTX_load_verify_locations(3) should probably be moved here, but not all, since the SSL page also talks about SSL servers and clients and the like. As i'm not completely sure regarding the boundaries, i'm leaving that as it is for now.
2017-01-06Remove cross references to the undocumented functions X509_STORE_new(3)Ingo Schwarze
and X509_STORE_add_lookup(3) reported by jmc@. Even though these functions are public, they seem more useful internally than for application programs, so now is not the time to document them.
2017-01-06Delete a sentence containing a cross reference to an undocumentedIngo Schwarze
function that had the the sole purpose of discouraging its use. Not talking about it at all discourages using it even more. Dangling cross reference reported by jmc@.
2017-01-06resolve duplication of names and prototypes in manuals related to ex_dataIngo Schwarze
and sprinkle cross references instead; more work is obviously needed here
2017-01-06Replace two dangling .Xrs to sk_*() macros with .Fn; reported by jmc@.Ingo Schwarze
The safestack stuff is the most ill-designed user interface i have seen so far in OpenSSL. It looks positively undocumentable. At least i'm not trying to document it right now.
2017-01-06Delete a cross reference to the undocumented function X509_check_purpose(3)Ingo Schwarze
that wasn't accompanied by any related information. Reported by jmc@. There are a dozen functions handling X509_PURPOSE objects, all undocumented, a host of defines, and it seems that a callback is required. So this seems complicated, i doubt that is much used in practice, and i'm not diving into it at this point in time.
2017-01-06Remove bogus cross reference to ui_create(3) reported by jmc@Ingo Schwarze
and refer readers to the header file instead. I'm not convinced customized prompting is such a bright idea, it feels somewhat like overengineering, so i'm not documenting it right now. People who really feel compelled to roll their own prompting can go read the source code.
2017-01-06Remove dangling .Xrs to PKCS7_final(3) reported by jmc@Ingo Schwarze
and just use .Fn for now. Not counting constructors, destructors, decoders, encoders, and debuggers, six out of 24 public functions operating on PKCS7 objects are currently documented. I'm not documenting the remaining 18 ones at this point in time.
2017-01-06Remove a dangling .Xr to PKCS7_SIGNER_INFO_sign(3) reported by jmc@Ingo Schwarze
and just use .Fn for now. There are about two dozen interfaces dealing with PKCS7_SIGNER_INFO objects and none but the constructor, destructor, decoder, and encoder are documented so far. It makes no sense to document one random one, and i'm not going to document all of PKCS7_SIGNER_INFO right now.
2017-01-06Remove a dangling cross reference reported by jmc@.Ingo Schwarze
I'm not convinced documenting EVP_MD_CTX_set_flags(3) would be wise. Instead, refer people to the header file to make it more obvious that they are tinkering with internals when using such flags.
2017-01-06Add EVP_read_pw_string(3) to NAME and SYNOPSIS,Ingo Schwarze
resolving a dangling cross reference reported by jmc@. Sort NAME and SYNOPSIS to agree with .Dt and DESCRIPTION. Unify parameter names. Delete a sentence about an implementation detail that is no longer true. Mention the length limitation of the *_string() variants.
2017-01-06keep the tokens list sorted;Jason McIntyre
2017-01-06Add ruby 2.4 informationJeremy Evans
2017-01-06Ansify cpu_sysctl() on mips64 platforms.Frederic Cambus
OK patrick@, visa@, jasper@, mpi@
2017-01-06Don't install standard C headers for which we already have a proper systemMark Kettenis
version. Also don't install vadefs.h which is a microsoft invention. ok patrick@
2017-01-06Add max_align_t.Mark Kettenis
ok millert@
2017-01-06Add C11 support.Mark Kettenis
ok millert@
2017-01-06Remove the global viftable vector that holds the virtual interfacesRafael Zalamena
configuration and instead use ifnet to store the configuration and counters. With this we can safely use multicast routing daemons on multiple domains without vif id colisions. ok mpi@
2017-01-06No point in having an .Xr hostapd if hostap mode is not supported by theTheo Buehler
driver, so comment it out as is done elsewhere. ok stsp
2017-01-06Simplify code by removing some old pullup macro, killing some variablesRafael Zalamena
and using m_dup_pkt() instead of m_copym() with max_linkhdr space adjust on packet sending to avoid more mbuf allocations. with input from millert@ and mikeb@, ok mikeb@
2017-01-06Nits found with clang.Nicholas Marriott
2017-01-06Incremental search in copy mode (on for emacs keys by default) - muchNicholas Marriott
the same as normal searching but updates the cursor position and marked search terms as you type. C-r and C-s in the prompt repeat the search, once finished searching (with Enter), N and n work as before.
2017-01-06Kill various splsoftnet().Martin Pieuchot
ok rzalamena@, visa@
2017-01-06fix previousDamien Miller
2017-01-06syncTheo de Raadt
2017-01-06show a useful error message when included config files can't beDamien Miller
opened; bz#2653, ok dtucker@
2017-01-06Delete a cross reference to the non-existent manual page BIO_set_flags(3),Ingo Schwarze
reported by jmc@. Documenting that function would be a bad idea. All other flags are used internally and should better not be tampered with. It looks like an internal function that was made public by mistake, then abused for an unrelated user interface purpose: a classic case of botched user interface design. Instead, only show how to use this function for this one specific purpose. While here, delete a sentence from the DESCRIPTION that merely duplicated content from the BUGS section.
2017-01-06sshd_config is documented to set GSSAPIStrictAcceptorCheck=yes byDamien Miller
default, so actually make it do this. bz#2637 ok dtucker
2017-01-06Avoid confusing error message when attempting to use ssh-keyscan builtDamien Miller
without SSH protocol v.1 to scan for v.1 keys; bz#2583